CVE-2007-5378Improper Restriction of Operations within the Bounds of a Memory Buffer in TK TK Toolkit

Severity
6.8MEDIUMNVD
NVD4.3
EPSS
1.4%
top 19.82%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 12
Latest updateMay 1

Description

Buffer overflow in the FileReadGIF function in tkImgGIF.c for Tk Toolkit 8.4.12 and earlier, and 8.3.5 and earlier, allows user-assisted attackers to cause a denial of service (segmentation fault) via an animated GIF in which the first subimage is smaller than a subsequent subimage, which triggers the overflow in the ReadImage function, a different vulnerability than CVE-2007-5137.

CVSS vector

AV:N/AC:M/C:N/I:N/A:PExploitability: 8.6 | Impact: 2.9

Affected Packages7 packages

NVDtcl_tk/tk_toolkit8.3.5+1
debiandebian/libtk-img< libtk-img 1.3-release-8 (bookworm)
NVDtcl_tk/tcl_tk8.4.13, 8.4.14, 8.4.15+2

🔴Vulnerability Details

4
GHSA
GHSA-5mgp-v92x-h349: Buffer overflow in the FileReadGIF function in tkImgGIF2022-05-01
GHSA
GHSA-67cg-f67f-c8v9: Buffer overflow in the ReadImage function in generic/tkImgGIF2022-05-01
OSV
CVE-2007-5378: Buffer overflow in the FileReadGIF function in tkImgGIF2007-10-12
OSV
CVE-2007-5137: Buffer overflow in the ReadImage function in generic/tkImgGIF2007-09-28

📋Vendor Advisories

6
VMware
Updates to VMware Workstation, VMware Player, VMware ACE, VMware Fusion, VMware Server, VMware VIX API, VMware ESX, VMware ESXi resolve critical security issues2008-06-04
Ubuntu
Tk vulnerability2007-10-11
Red Hat
Tk GIF processing buffer overflow2007-09-07
Debian
CVE-2007-5137: libtk-img - Buffer overflow in the ReadImage function in generic/tkImgGIF.c in Tcl (Tcl/Tk) ...2007
Debian
CVE-2007-5378: libtk-img - Buffer overflow in the FileReadGIF function in tkImgGIF.c for Tk Toolkit 8.4.12 ...2007

💬Community

2
Bugzilla
CVE-2007-5378 Tk GIF processing buffer overflow2007-10-15
Bugzilla
CVE-2007-5137 Tk GIF processing buffer overflow [F7]2007-10-15